CVE-2011-4044 EXPLOIT
5.8
MEDIUM · CVSS 2.0 · EPSS 26.7% (pctl 98)
Patch early
A public exploit exists.
Description
An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to modify files via calls to unknown methods.
Scoring
| CVSS | 5.8 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:P |
| EPSS | 26.66% — more likely to be exploited than 98% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2012-04-03 |
| Last modified | 2026-07-09 |
Affected (3)
| Vendor | Product |
|---|---|
| arcinfo | frontvue |
| arcinfo | pcvue |
| arcinfo | plantvue |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | PcVue 10.0 SV.UIGrdCtrl.1 - 'LoadObject()'/'SaveObject()' Trusted DWORD (Metasploit) | 2011-10-12 |
| exploit-db | PcVue 10.0 - Multiple Vulnerabilities | 2011-09-27 |
References
- http://www.pcvuesolutions.com/index.php?option=com_content&view=article&id=244&Itemid=257
- http://www.us-cert.gov/control_systems/pdf/ICSA-11-340-01.pdf
- https://support.pcvuescada.com/index.php?option=com_k2&view=item&id=512&Itemid=440
- http://www.pcvuesolutions.com/index.php?option=com_content&view=article&id=244&Itemid=257
- http://www.us-cert.gov/control_systems/pdf/ICSA-11-340-01.pdf
- https://support.pcvuescada.com/index.php?option=com_k2&view=item&id=512&Itemid=440
→ the Explorer · watch your stack · NVD